G-Research Logo

G-Research

Penetration Tester

Reposted Yesterday
Be an Early Applicant
In-Office
London, Greater London, England, GBR
Mid level
In-Office
London, Greater London, England, GBR
Mid level
Lead and execute penetration tests and vulnerability assessments across infrastructure and applications (Kubernetes, Jenkins, Windows Domain Services). Deliver remediation guidance, assess security controls, support Risk/Compliance and Detection teams, build automation/tooling, and mentor junior team members to improve overall security posture.
The summary above was generated by AI

We tackle the most complex problems in quantitative finance, by bringing scientific clarity to financial complexity.

From our London HQ, we unite world-class researchers and engineers in an environment that values deep exploration and methodical execution - because the best ideas take time to evolve.  Together we’re building a world-class platform to amplify our teams’ most powerful ideas.

Security is foundational to this mission and must be delivered in a way that supports how our engineering teams build and operate complex systems at scale.

Take the next step in your career.

The role

As a Penetration Tester, you will lead and conduct penetration tests and vulnerability assessments across a wide range of internal systems and security controls. Your work will directly strengthen our overall security posture through continuous testing, actionable insights and collaboration on remediation strategies. 

Key responsibilities of the role include:

  • Performing in-depth penetration testing across a variety of technologies, including Kubernetes, Jenkins and Windows Domain Services
  • Delivering practical, impactful remediation advice to Control Owners based on identified vulnerabilities
  • Supporting business and application owners in assessing and improving the effectiveness of their security controls
  • Providing technical consulting and assurance to Risk, Compliance and Detection Engineering teams, including control assessments and configuration reviews
  • Maintaining and enhancing the team’s operational tooling, automation and system integrations
  • Mentoring and supporting less experienced team members, fostering knowledge sharing and growth
Who are we looking for?

The ideal candidate will have the following skills and experience:

  • Proven expertise across the full penetration testing lifecycle, from scoping and execution to reporting and stakeholder debriefs
  • Deep understanding of vulnerability assessment practices, including effective remediation strategies for both infrastructure and application-level security
  • Strong background in technical security roles across diverse environments; familiarity with DevOps technologies
  • Experience validating the effectiveness of security controls through both manual and automated approaches
  • Engineering experience, particularly in building automation and tooling to streamline team output
  • Proficiency in development and scripting tools commonly used in DevSecOps, including Python, Jenkins and Ansible.
  • Relevant security certifications with OSCP required and CRT or OSEP desirable
  • Strong communication and interpersonal skills, with an emphasis on clear and concise written output
Why join us?
  • Highly competitive compensation plus annual discretionary bonus
  • Lunch provided via Just Eat for Business and dedicated barista bar
  • 35 days’ annual leave
  • 9% company pension contributions
  • Informal dress code and excellent work-life balance
  • Comprehensive healthcare and life assurance
  • Cycle-to-work scheme
  • Monthly company events

G-Research is committed to cultivating and preserving an inclusive work environment. We are an ideas-driven business and we place great value on diversity of experience and opinions.

We want to ensure that applicants receive a recruitment experience that enables them to perform at their best. If you have a disability or special need that requires accommodation please let us know in the relevant section

HQ

G-Research London, England Office

London, United Kingdom

Similar Jobs

Yesterday
Hybrid
London, Greater London, England, GBR
Mid level
Mid level
Professional Services • Consulting • Financial Services
Deliver hands-on penetration tests across web applications, APIs, and network infrastructure, plus Cyber Essentials Plus and wider technical security reviews. Identify and validate vulnerabilities, explain business risk, and provide remediation. Produce reports, present findings, manage engagement scope, and contribute to advisory work, business development, and continuous improvement of methodologies and tooling.
Top Skills: Active DirectoryAWSAzureBashBurp SuiteCis BenchmarksCyber Essentials PlusGCPIasmeKali LinuxLinuxMicrosoft 365Microsoft Entra IdMitre Att&CkNessusNmapOwasp Web Security Testing GuidePowershellPtesPythonQualysTcp/IpWindows
8 Days Ago
In-Office
London, Greater London, England, GBR
Senior level
Senior level
Cloud • Information Technology • Cybersecurity
Lead and deliver offensive security assessments (infrastructure, web, API), produce technical and executive reports, support pre-sales, perform QA, research and develop new testing methodologies, and collaborate across teams.
Top Skills: Api TestingAWSAzureBashGCPHack The BoxInfrastructure TestingLlm/AiPowershellPythonTryhackmeWeb Application Testing
14 Days Ago
Hybrid
London, Greater London, England, GBR
Mid level
Mid level
Consulting
Deliver IT/OT penetration tests and security assessments across mobile, cloud and operational technology environments. Produce high-quality written and verbal reports, contribute to internal tooling and training, and collaborate with stakeholders and cross-functional teams in hybrid client engagements.
Top Skills: CloudCrest/CyberschemeCtl/CstlCtm/CstmMaritime EnvironmentsMobile Application TestingOperational TechnologyOscpTelecoms Environments

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account